Additional scan result of Farbar Recovery Scan Tool (x86) Version: 26-07-2015 Ran by Joanna at 2015-07-28 17:42:08 Running from C:\Users\Joanna\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2620197854-1719786493-1418023469-500 - Administrator - Disabled) => C:\Users\Administrator Guest (S-1-5-21-2620197854-1719786493-1418023469-501 - Limited - Enabled) => C:\Users\Guest Joanna (S-1-5-21-2620197854-1719786493-1418023469-1000 - Administrator - Enabled) => C:\Users\Joanna Justyna (S-1-5-21-2620197854-1719786493-1418023469-1002 - Administrator - Enabled) => C:\Users\Justyna Kamil (S-1-5-21-2620197854-1719786493-1418023469-1001 - Administrator - Enabled) => C:\Users\Kamil UpdatusUser (S-1-5-21-2620197854-1719786493-1418023469-1273 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: COMODO Antivirus (Disabled - Out of date) {B74CC7D2-B407-E1DC-1033-DD315BCDC8C8} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: COMODO Antivirus (Disabled - Up to date) {0C2D2636-923D-EE52-2A83-E643204A8275} FW: COMODO Firewall (Disabled) {8F7746F7-FE68-E084-3B6C-7404A51E8FB3} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) ABBYY FineReader 6.0 Sprint (HKLM\...\{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}) (Version: 6.00.2201.41622 - ABBYY Software House) AC3Filter 1.63b (HKLM\...\AC3Filter_is1) (Version: 1.63b - Alexander Vigovsky) Active@ ISO Burner (HKLM\...\{7694E0B1-2332-448B-9235-929F84B41E3F}) (Version: 2.5.1 - LSoft Technologies) Adobe Digital Editions (HKLM\...\Digital Editions) (Version: - ) Adobe Flash Player 14 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Flash Player 16 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 16.0.0.235 - Adobe Systems Incorporated) Adobe Reader 9.5.5 - Polish (HKLM\...\{AC76BA86-7AD7-1045-7B44-A95000000001}) (Version: 9.5.5 - Adobe Systems Incorporated) Ad-Remover (HKU\S-1-5-21-2620197854-1719786493-1418023469-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Ad-Remover) (Version: - ) Ad-Remover (HKU\S-1-5-21-2620197854-1719786493-1418023469-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Ad-Remover) (Version: - ) Ad-Remover (HKU\S-1-5-21-2620197854-1719786493-1418023469-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Ad-Remover) (Version: - ) Ad-Remover (HKU\S-1-5-21-2620197854-1719786493-1418023469-501-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Ad-Remover) (Version: - ) Advanced IP Scanner 2.4 (HKLM\...\{221C4218-4414-4275-AF04-748DF4BF48D3}) (Version: 2.4.2526 - Famatech) AIMP3 (HKLM\...\AIMP3) (Version: v3.55.1355, 14.07.2014 - AIMP DevTeam) AirLive X.USB (HKLM\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 7.0 - OvisLink) Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{04E205D6-88B1-4652-B162-42DF2C3B1228}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{128A36ED-21BE-4547-9FFE-5B85AEC735DD}) (Version: - Microsoft) Auslogics BoostSpeed (HKLM\...\{7216871F-869E-437C-B9BF-2A13F2DCE63F}_is1) (Version: 5.1 - Auslogics Software Pty Ltd) Avira (HKLM\...\{8467e01f-0496-42ce-b247-88ef205b4880}) (Version: 1.1.40.29239 - Avira Operations GmbH & Co. KG) Avira (Version: 1.1.40.29239 - Avira Operations GmbH & Co. KG) Hidden Avira Antivirus (HKLM\...\Avira Antivirus) (Version: 15.0.12.408 - Avira Operations GmbH & Co. KG) Avira System Speedup (HKLM\...\AviraSpeedup) (Version: 1.3.1.9970 - Avira System Speedup) CCleaner (HKLM\...\CCleaner) (Version: 5.07 - Piriform) Cisco EAP-FAST Module (HKLM\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Comodo Dragon (HKLM\...\Comodo Dragon) (Version: 36.1.1.21 - Comodo) COMODO Internet Security Premium (HKLM\...\{2736B6BD-31EC-4FC8-A48C-F0A5C914C0B6}) (Version: 7.0.55655.4142 - COMODO Security Solutions Inc.) CoreAAC Audio Decoder (remove only) (HKLM\...\CoreAAC Audio Decoder) (Version: - ) CPUID CPU-Z 1.72.1 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) Detektor Winampa (HKU\S-1-5-21-2620197854-1719786493-1418023469-1000\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) Detektor Winampa (HKU\S-1-5-21-2620197854-1719786493-1418023469-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) Detektor Winampa (HKU\S-1-5-21-2620197854-1719786493-1418023469-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) Detektor Winampa (HKU\S-1-5-21-2620197854-1719786493-1418023469-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) Detektor Winampa (HKU\S-1-5-21-2620197854-1719786493-1418023469-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) Detektor Winampa (HKU\S-1-5-21-2620197854-1719786493-1418023469-501-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) EasyCleaner (HKLM\...\{F5346614-B7C4-4E94-826A-E2363155233D}) (Version: 2.0.6.380 - ToniArts) EasySaver B8.1224.1 (HKLM\...\{07300F01-89CA-4CF8-92BD-2A605EB83C95}) (Version: 1.00.0000 - Gigabyte) eGazety Reader (HKLM\...\eGazety Reader) (Version: - eGazety Sp. z o. o.) ESET Online Scanner v3 (HKLM\...\ESET Online Scanner) (Version: - ) foobar2000 v1.3.3 (HKLM\...\foobar2000) (Version: 1.3.3 - Peter Pawlowski) Free Download Manager 3.9.4 (HKLM\...\Free Download Manager_is1) (Version: - FreeDownloadManager.ORG) GeekBuddy (HKLM\...\{79B9250E-3714-4877-A2B0-D6C1E93E471A}) (Version: 4.18.121 - Comodo Security Solutions Inc) Google Chrome (HKLM\...\Google Chrome) (Version: 41.0.2272.89 - Google Inc.) Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden GPL Ghostscript (HKLM\...\GPL Ghostscript 9.07) (Version: 9.07 - Artifex Software Inc.) GTA San Andreas (HKLM\...\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}) (Version: 1.00.00001 - Rockstar Games) Haali Media Splitter (HKLM\...\HaaliMkx) (Version: - ) HD Tune Pro 5.50 (HKLM\...\HD Tune Pro_is1) (Version: - EFD Software) Heroes of Might and Magic IV - Z³ota Edycja (HKLM\...\{94B4E2D8-A184-415C-BF9E-F699D76466BD}) (Version: 3.0 - ) Inkscape 0.48.2 (HKLM\...\Inkscape) (Version: 0.48.2 - ) inSSIDer 3 (HKLM\...\{A80CEA4E-74C1-4F9F-806B-E1D9AFC01768}) (Version: 3.0.7.48 - MetaGeek, LLC) Java(TM) 6 Update 26 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216024FF}) (Version: 6.0.260 - Oracle) JetClean (HKLM\...\BlueSprig_JetClean_is1) (Version: 1.5.0 - BlueSprig) Lexmark 3600-4600 Series (HKLM\...\Lexmark 3600-4600 Series) (Version: - Lexmark International, Inc.) Malwarebytes Anti-Malware wersja 2.1.8.1057 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Minimem (HKLM\...\{411D4BD9-70AE-47B1-A905-9F54C5DD8F49}) (Version: 2.0.0 - Kerkia) Monster Trux Extreme - Offroad Edition (HKLM\...\{09F55516-AC75-43EA-8127-292E5A28B7DF}) (Version: 1.0 - Data Design Interactive) Mozilla Firefox 38.0.5 (x86 pl) (HKLM\...\Mozilla Firefox 38.0.5 (x86 pl)) (Version: 38.0.5 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 34.0.5 - Mozilla) MPC-HC 1.7.8 (HKLM\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.7.8 - MPC-HC Team) MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Nero 7 Essentials (HKLM\...\{BD49141C-188C-4B75-9F46-C2C42F2D1033}) (Version: 7.03.0934 - Nero AG) Notepad++ (HKLM\...\Notepad++) (Version: 6.7 - Notepad++ Team) NVIDIA 3D Vision Driver 311.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 311.06 - NVIDIA Corporation) NVIDIA Display Control Panel (HKLM\...\NVIDIA Display Control Panel) (Version: 6.14.11.9745 - NVIDIA Corporation) NVIDIA Graphics Driver 311.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 311.06 - NVIDIA Corporation) NVIDIA Performance Drivers (HKLM\...\{4C0A8D65-4286-4B58-87FE-18AD24289285}) (Version: 2.0.0.17 - NVIDIA Corporation) NVIDIA Update 1.11.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.11.3 - NVIDIA Corporation) Odkurzacz (HKLM\...\Odkurzacz 13.5_is1) (Version: 13.5.0.1911 - FranmoSoftware - Maciej Opaliñski) PhotoFiltre Studio X (HKU\S-1-5-21-2620197854-1719786493-1418023469-1000\...\PhotoFiltre Studio X) (Version: - ) PhotoFiltre Studio X (HKU\S-1-5-21-2620197854-1719786493-1418023469-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\PhotoFiltre Studio X) (Version: - ) Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.) Podatnik.info PIT pro 2013 wersja 2.0.14.32480 (HKLM\...\{B239B43B-3E99-40B0-80BF-1B1BCA868D4E}_is1) (Version: 2.0.14.32480 - Podatnik.info Sp. z o.o.) PrivDog (HKLM\...\PrivDog) (Version: 1.8.0.15 - privdog.com) PVSonyDll (Version: 1.00.0001 - NVIDIA Corporation) Hidden Ralink RT2870 Wireless LAN Card (HKLM\...\{28DA7D8B-F9A4-4F18-8AA0-551B1E084D0D}) (Version: 1.5.19.0 - Ralink) Realtek 8169 8168 8101E 8102E Ethernet Driver (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0000 - Realtek) REALTEK RTL8187 Wireless LAN Driver and Utility (HKLM\...\{BE686891-3C56-4714-AFEF-341A7867BA80}) (Version: Package:1.00.0023 Driver:6.1313.613.2008 UI:500.1510.1203.2007 - REALTEK Semiconductor Corp.) RealUpgrade 1.0 (Version: 1.0.0 - RealNetworks, Inc.) Hidden Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) SpeedFan (remove only) (HKLM\...\SpeedFan) (Version: - ) Testy Bplus 5.1.3.72 (HKLM\...\{81999787-A518-4218-86D5-C5D25E6808F5}_is1) (Version: 5.1.3.72 - Grupa IMAGE sp. z o.o.) Testy na prawo jazdy 2014 kat. B wersja 3.0 (HKLM\...\{978A00C7-D540-4970-8757-B39CB9B14D64}_is1) (Version: 3.0 - KTW) The KMPlayer (remove only) (HKLM\...\The KMPlayer) (Version: 3.6.0.87 - KMP Media co., Ltd) Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) Winamp (HKLM\...\Winamp) (Version: 5.57 - Nullsoft, Inc) Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp) WinRAR 5.01 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) XBMC (HKU\S-1-5-21-2620197854-1719786493-1418023469-1000\...\XBMC) (Version: - Team XBMC) XBMC (HKU\S-1-5-21-2620197854-1719786493-1418023469-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\XBMC) (Version: - Team XBMC) Xirrus Wi-Fi Inspector (HKLM\...\{BBB21AB1-2C45-435D-A05A-B563072E7B9B}) (Version: 1.2.1.4 - Xirrus) Zilla JPG To PDF Converter 2.0 (HKLM\...\Zilla JPG To PDF Converter_is1) (Version: - PDFZilla) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2620197854-1719786493-1418023469-1000_Classes\CLSID\{00B7E0AB-817A-44AD-A04B-D1148D524136}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2620197854-1719786493-1418023469-1000_Classes\CLSID\{022105BD-948A-40C9-AB42-A3300DDF097F}\localserver32 -> C:\Users\Joanna\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-2620197854-1719786493-1418023469-1000_Classes\CLSID\{20F8662A-CCF2-420C-8FEC-2F5D3DD2F3CA}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2620197854-1719786493-1418023469-1000_Classes\CLSID\{7C6E29BC-8B8B-4C3D-859E-AF6CD158BE0F}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2620197854-1719786493-1418023469-1000_Classes\CLSID\{88D969C0-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2620197854-1719786493-1418023469-1000_Classes\CLSID\{88D969C1-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2620197854-1719786493-1418023469-1000_Classes\CLSID\{88D969C2-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2620197854-1719786493-1418023469-1000_Classes\CLSID\{88D969C3-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2620197854-1719786493-1418023469-1000_Classes\CLSID\{88D969C4-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2620197854-1719786493-1418023469-1000_Classes\CLSID\{88D969C5-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2620197854-1719786493-1418023469-1000_Classes\CLSID\{88D969C6-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2620197854-1719786493-1418023469-1000_Classes\CLSID\{88D969C8-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2620197854-1719786493-1418023469-1000_Classes\CLSID\{88D969C9-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2620197854-1719786493-1418023469-1000_Classes\CLSID\{88D969CA-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2620197854-1719786493-1418023469-1000_Classes\CLSID\{88D969D6-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation) ==================== Restore Points ========================= 27-07-2015 16:26:39 Scheduled Checkpoint 28-07-2015 16:53:44 Revo Uninstaller's restore point - Ashampoo Burning Studio FREE v.1.14.5 ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2014-03-30 18:22 - 2015-01-02 20:19 - 00000054 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {14D5C82A-E105-46CD-A6E6-747C4CFBABE5} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-2620197854-1719786493-1418023469-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2010-06-03] (RealNetworks, Inc.) Task: {1985461B-602D-4EB2-A032-0A9C321735F7} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-2620197854-1719786493-1418023469-1001 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2010-06-03] (RealNetworks, Inc.) Task: {2F4039CA-08E1-4505-92E6-8B2B81D4996E} - System32\Tasks\Microsoft\Windows\RVLKL\RVLKL => C:\ProgramData\rvlkl\rvlkl.exe [2015-02-27] (Logixoft) <==== ATTENTION Task: {324D73B7-B7F2-4166-A448-053C88DACA3C} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {36257E3B-51C8-4917-AA0C-F7E914C7258E} - System32\Tasks\AviraSpeedup => C:\Program Files\Avira\AviraSpeedup\avira_system_speedup.exe [2014-11-17] (Avira) Task: {38752892-90EF-48A6-BE43-639ED6A9995F} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2620197854-1719786493-1418023469-1000UA => C:\Users\Joanna\AppData\Local\Google\Update\GoogleUpdate.exe [2015-01-13] (Google Inc.) Task: {3FDCC801-AEA2-4D71-861D-3DD846AB79BB} - System32\Tasks\COMODO\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {593CE248-48DD-4098-B3AE-95BB9D3A4FE8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-02-21] (Google Inc.) Task: {6626CAF2-05E6-4ABD-9A09-4C536888587C} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-2620197854-1719786493-1418023469-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2010-06-03] (RealNetworks, Inc.) Task: {6EE1FA7B-5E27-48F1-9ED7-A570F62636C9} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-01-03] (Adobe Systems Incorporated) Task: {71BE3CEC-F153-420A-8101-5E4DA96A09E8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-02-21] (Google Inc.) Task: {7E9B88A5-B7C6-4B06-BF0C-6EBB2A8FF61A} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {82C6C3FC-D150-423B-8A4B-E22A1150BF9A} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2620197854-1719786493-1418023469-1000Core => C:\Users\Joanna\AppData\Local\Google\Update\GoogleUpdate.exe [2015-01-13] (Google Inc.) Task: {BA93A89E-BC3D-4318-A685-CB83746676CF} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-2620197854-1719786493-1418023469-1002 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2010-06-03] (RealNetworks, Inc.) Task: {D71D2B4B-7E44-48CF-8183-736A43F22D1D} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-2620197854-1719786493-1418023469-1001 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2010-06-03] (RealNetworks, Inc.) Task: {E8CC7456-14AA-40D0-8D7B-A785E9E152A4} - System32\Tasks\Installation App Launcher => C:\Program Files\Lexmark 3600-4600 Series\ezprint.exe [2010-02-04] (Lexmark International Inc.) Task: {EA547FCA-F85E-4D14-92D4-AB182902465D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-06-01] (Piriform Ltd) Task: {EFF8A5D9-35E0-4362-B820-AC4AEC64449B} - System32\Tasks\JetCleanLoginCheckUpdate => C:\Program Files\BlueSprig\JetClean\AutoUpdate.exe [2013-05-14] (BlueSprig) Task: {F1012854-6D6C-4F5F-9696-CB332FD4687C} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {F737AA55-14C5-487E-B5BA-678862BA36E1} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-2620197854-1719786493-1418023469-1002 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2010-06-03] (RealNetworks, Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2620197854-1719786493-1418023469-1000Core.job => C:\Users\Joanna\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2620197854-1719786493-1418023469-1000UA.job => C:\Users\Joanna\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\User_Feed_Synchronization-{9C2D38E0-ADA5-40BB-8DD2-75E221080E48}.job => C:\Windows\system32\msfeedssync.exe Task: C:\Windows\Tasks\User_Feed_Synchronization-{A6C21D97-E8FA-48C3-80F9-DECFDCB25523}.job => C:\Windows\system32\msfeedssync.exe Task: C:\Windows\Tasks\User_Feed_Synchronization-{C2A7AFD6-ECE9-4E88-96F0-DD5714E66EE7}.job => C:\Windows\system32\msfeedssync.exe ==================== Loaded Modules (Whitelisted) ============== 2015-01-28 21:01 - 2009-10-16 18:12 - 00147968 _____ () C:\Windows\system32\spool\PRTPROCS\W32X86\lxdxdrpp.dll 2012-05-03 07:55 - 2009-08-11 21:18 - 00497664 _____ () C:\Windows\system32\ac3filter.acm 2013-05-08 15:51 - 2013-05-08 15:51 - 00019056 _____ () C:\Program Files\Adobe\Reader 9.0\Reader\viewerps.dll 2011-08-05 15:49 - 2008-12-24 16:52 - 00068136 _____ () C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE 2011-08-05 15:49 - 2008-12-05 17:03 - 00098304 _____ () C:\Program Files\Gigabyte\EasySaver\YCC.DLL 2009-04-28 03:40 - 2009-04-28 03:40 - 04440064 _____ () C:\Program Files\NVIDIA Corporation\Performance Drivers\nvPDsvc.exe 2015-01-28 21:19 - 2010-02-04 02:27 - 00672424 _____ () C:\Program Files\Lexmark 3600-4600 Series\lxdxmon.exe 2015-01-28 21:19 - 2010-02-04 02:04 - 00380928 _____ () C:\Program Files\Lexmark 3600-4600 Series\lxdxscw.dll 2015-01-28 21:19 - 2010-02-04 01:52 - 00589824 _____ () C:\Program Files\Lexmark 3600-4600 Series\lxdxdatr.dll 2015-01-28 21:19 - 2010-02-04 02:04 - 00782336 _____ () C:\Program Files\Lexmark 3600-4600 Series\lxdxDRS.dll 2015-01-28 21:18 - 2010-02-04 02:05 - 00081920 _____ () C:\Program Files\Lexmark 3600-4600 Series\lxdxcaps.dll 2015-01-28 21:18 - 2010-02-04 01:52 - 00069632 _____ () C:\Program Files\Lexmark 3600-4600 Series\lxdxcnv4.dll 2015-01-28 21:18 - 2010-02-04 02:02 - 00364544 _____ () C:\Program Files\Lexmark 3600-4600 Series\iptk.dll 2015-01-28 21:19 - 2007-09-06 06:11 - 00151552 _____ () C:\Program Files\Lexmark 3600-4600 Series\lxdxptp.dll 2015-06-01 19:28 - 2015-06-01 19:28 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2015-03-12 23:48 - 2015-03-07 08:13 - 09279304 _____ () C:\Program Files\Google\Chrome\Application\41.0.2272.89\pdf.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:07BF512B AlternateDataStreams: C:\Users\Joanna\Desktop\Bates.Motel.S01E03.Whats.Wrong.with.Norman.PL.480p.WEB-DL.AC3.2.0.XviD-Ralf.DeiX.avi:TOC.WMV AlternateDataStreams: C:\Users\Joanna\Downloads\9.1.2.tygodnia.1986.PL.BRRip.XviD.700-LTN.avi:TOC.WMV AlternateDataStreams: C:\Users\Joanna\Downloads\Poklosie.2012.PL.480p.BDRip.XviD.AC3-ELiTE.avi:TOC.WMV ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\windows\Web\Wallpaper\img24.jpg HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\windows\Web\Wallpaper\img24.jpg HKU\S-1-5-21-2620197854-1719786493-1418023469-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\img20.jpg HKU\S-1-5-21-2620197854-1719786493-1418023469-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\img20.jpg HKU\S-1-5-21-2620197854-1719786493-1418023469-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Users\Kamil\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg HKU\S-1-5-21-2620197854-1719786493-1418023469-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Users\Public\Pictures\Sample Pictures\Tree.jpg HKU\S-1-5-21-2620197854-1719786493-1418023469-1273-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\windows\Web\Wallpaper\img24.jpg HKU\S-1-5-21-2620197854-1719786493-1418023469-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\windows\Web\Wallpaper\img24.jpg HKU\S-1-5-21-2620197854-1719786493-1418023469-501-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\windows\Web\Wallpaper\img24.jpg DNS Servers: 192.168.2.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 1) (EnableLUA: ) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\Services: CLPSLauncher => 2 MSCONFIG\Services: cmcore => 2 MSCONFIG\Services: CmdAgent => 2 MSCONFIG\Services: cmdvirth => 3 MSCONFIG\Services: DragonUpdater => 2 MSCONFIG\Services: GeekBuddyRSP => 2 MSCONFIG\Services: NBService => 3 MSCONFIG\Services: NMIndexingService => 3 MSCONFIG\Services: RaMediaServer => 2 MSCONFIG\Services: RealtekUSB => 2 MSCONFIG\Services: SkypeUpdate => 3 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^rvlkl.lnk => C:\Windows\pss\rvlkl.lnk.CommonStartup MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR MSCONFIG\startupreg: COMODO Internet Security => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe MSCONFIG\startupreg: Free Download Manager => C:\Program Files\Free Download Manager\fdm.exe -autorun MSCONFIG\startupreg: tvncontrol => "C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe" -controlservice -slave ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [WinCollab-DFSR-In-TCP] => (Allow) %SystemRoot%\system32\dfsr.exe FirewallRules: [WinCollab-DFSR-Out-TCP] => (Allow) %SystemRoot%\system32\dfsr.exe FirewallRules: [WinCollab-In-TCP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe FirewallRules: [WinCollab-Out-TCP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe FirewallRules: [WinCollab-In-UDP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe FirewallRules: [WinCollab-Out-UDP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe FirewallRules: [TCP Query User{77DF793E-FF48-47D7-B6E3-4A994E47CBEC}C:\windows\explorer.exe] => (Allow) C:\windows\explorer.exe FirewallRules: [UDP Query User{7555B8A5-EAF5-45A3-B15A-CC003ACF48F6}C:\windows\explorer.exe] => (Allow) C:\windows\explorer.exe FirewallRules: [TCP Query User{C87987F0-565A-470D-B624-14CCED8A4B17}C:\windows\explorer.exe] => (Allow) C:\windows\explorer.exe FirewallRules: [UDP Query User{08A7A300-80C4-470B-AF24-AE2EBF42CE17}C:\windows\explorer.exe] => (Allow) C:\windows\explorer.exe FirewallRules: [TCP Query User{6B005D7D-5838-4CFF-ADAC-170DE93F2F59}C:\users\joanna\desktop\programy\ubisoft\heroes of might and magic v - dzikie hordy\bin\h5_game.exe] => (Block) C:\users\joanna\desktop\programy\ubisoft\heroes of might and magic v - dzikie hordy\bin\h5_game.exe FirewallRules: [UDP Query User{3BDF1D2D-9049-469A-9557-E5965A7405AF}C:\users\joanna\desktop\programy\ubisoft\heroes of might and magic v - dzikie hordy\bin\h5_game.exe] => (Block) C:\users\joanna\desktop\programy\ubisoft\heroes of might and magic v - dzikie hordy\bin\h5_game.exe FirewallRules: [TCP Query User{5D437837-3A8E-465B-8E8F-3F1CE24AE7D2}C:\valve\hl.exe] => (Allow) C:\valve\hl.exe FirewallRules: [UDP Query User{7ABE8764-6813-450F-8AA9-D89FA7C34003}C:\valve\hl.exe] => (Allow) C:\valve\hl.exe FirewallRules: [TCP Query User{019548EC-0CA0-4564-B4B7-BFDC534E4696}C:\valve\hl.exe] => (Allow) C:\valve\hl.exe FirewallRules: [UDP Query User{DCAD08DC-5BD7-450F-81F1-BC93EA898BE7}C:\valve\hl.exe] => (Allow) C:\valve\hl.exe FirewallRules: [TCP Query User{795AAC7F-5557-490A-ABE1-FC32054F4007}C:\program files\nero\nero 7\nero mediahome\nmmediaserver.exe] => (Block) C:\program files\nero\nero 7\nero mediahome\nmmediaserver.exe FirewallRules: [UDP Query User{3DEB9499-C74A-40B0-A8F8-1006B99123AA}C:\program files\nero\nero 7\nero mediahome\nmmediaserver.exe] => (Block) C:\program files\nero\nero 7\nero mediahome\nmmediaserver.exe FirewallRules: [{FFEE1F36-A9D8-45DD-878A-63CF4D23A190}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [TCP Query User{63F2DE54-8424-4641-91E9-9481EC3719BF}C:\program files\java\jre6\bin\javaw.exe] => (Allow) C:\program files\java\jre6\bin\javaw.exe FirewallRules: [UDP Query User{965D516F-C395-42EE-80F6-219ACF129CF0}C:\program files\java\jre6\bin\javaw.exe] => (Allow) C:\program files\java\jre6\bin\javaw.exe FirewallRules: [{5156C1F2-5948-4ADE-BE1E-F5B6003471F7}] => (Allow) C:\Program Files\Ralink\Common\RaMediaServer.exe FirewallRules: [{00F2F300-4BCA-4219-8BA3-98AEB8814944}] => (Allow) C:\Program Files\Ralink\Common\RaMediaServer.exe FirewallRules: [{1099F556-EF8A-44C6-B762-CF6BD3CAF36A}] => (Allow) C:\Program Files\Ralink\Common\RaUI.exe FirewallRules: [{EDE1B501-5D5D-4F1A-B056-3A440860D924}] => (Allow) C:\Program Files\Ralink\Common\RaUI.exe FirewallRules: [TCP Query User{4A8DA41F-83A5-4C6B-92B9-4866DBE133EA}C:\program files\free download manager\fdm.exe] => (Allow) C:\program files\free download manager\fdm.exe FirewallRules: [UDP Query User{4361296F-6713-44AE-B03C-CC6BC5CFA998}C:\program files\free download manager\fdm.exe] => (Allow) C:\program files\free download manager\fdm.exe FirewallRules: [{6B4E71A6-EC52-4A6A-8749-45E69E78C6D8}] => (Allow) LPort=80 FirewallRules: [{840101A6-9354-48CB-8DA2-9D72117DF5C1}] => (Allow) LPort=80 FirewallRules: [{7B6487AA-01B7-4DBD-9331-5A687A2D7B7A}] => (Allow) LPort=80 FirewallRules: [{6EA1CDD8-87B2-4B57-A0FA-C0B4A8CC0507}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{9E13DA11-9F9E-458C-AC2E-98CDA685194A}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{3AC6979F-A9FC-4D30-8F65-25B5E27ABD68}] => (Allow) C:\Program Files\Abbyy FineReader 6.0 Sprint\Scan\ScanMan6.exe FirewallRules: [{015B92F2-8206-410D-92A0-9774E0E192C5}] => (Allow) C:\Program Files\Abbyy FineReader 6.0 Sprint\Scan\ScanMan6.exe FirewallRules: [{79553C53-AB07-4EF4-B423-C53A214C5E27}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{C4A57F80-B6C3-47A2-B34A-801B741DD70A}C:\program files\xbmc\xbmc.exe] => (Allow) C:\program files\xbmc\xbmc.exe FirewallRules: [UDP Query User{274E3C02-9619-4B67-A79E-1E9DDE2E1DCD}C:\program files\xbmc\xbmc.exe] => (Allow) C:\program files\xbmc\xbmc.exe FirewallRules: [{509A95FA-962A-4C53-99F4-FABE6F7D2FBF}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{2362BC53-78CF-4885-97FF-3201F87F4C6E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{E7FFC142-D169-4432-A610-3BF542C5662E}] => (Allow) C:\Windows\System32\lxdxcoms.exe FirewallRules: [{79C42181-BB7E-4CC3-B3CD-122B15C0F1EE}] => (Allow) C:\Windows\System32\lxdxcoms.exe FirewallRules: [{174A2D85-C7AC-41F1-BBC4-0C3F6FB29669}] => (Allow) C:\Windows\System32\spool\drivers\w32x86\3\lxdxpswx.exe FirewallRules: [{08779760-1D3B-4281-8344-80BB86ABC964}] => (Allow) C:\Windows\System32\spool\drivers\w32x86\3\lxdxpswx.exe FirewallRules: [{CEF18682-507A-4770-86FC-8E9C4396E6CA}] => (Allow) C:\Program Files\Lexmark 3600-4600 Series\lxdxmon.exe FirewallRules: [{200B3974-C81B-443F-9508-8435E4B25C3E}] => (Allow) C:\Program Files\Lexmark 3600-4600 Series\lxdxmon.exe FirewallRules: [TCP Query User{FC27CD89-DDEE-4050-A142-FA3F6E1D3D1D}C:\downloads\utorrentportable\app\utorrent\utorrent.exe] => (Allow) C:\downloads\utorrentportable\app\utorrent\utorrent.exe FirewallRules: [UDP Query User{CB31A5B1-4D74-483A-979B-849237AA87B0}C:\downloads\utorrentportable\app\utorrent\utorrent.exe] => (Allow) C:\downloads\utorrentportable\app\utorrent\utorrent.exe FirewallRules: [{2BB49282-E211-4D7B-82F4-B7A066B0F7E3}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: Microsoft 6to4 Adapter #18 Description: Microsoft 6to4 Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Microsoft 6to4 Adapter #23 Description: Microsoft 6to4 Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Microsoft ISATAP Adapter #2 Description: Microsoft ISATAP Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Microsoft ISATAP Adapter #3 Description: Microsoft ISATAP Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Microsoft ISATAP Adapter #14 Description: Microsoft ISATAP Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Microsoft ISATAP Adapter #36 Description: Microsoft ISATAP Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver ==================== Event log errors: ========================= Application errors: ================== Error: (07/28/2015 05:03:31 PM) (Source: Windows Search Service) (EventID: 3058) (User: ) Description: The application cannot be initialized. Context: Windows Application Details: The content index metadata cannot be read. (0xc0041801) Error: (07/28/2015 05:03:31 PM) (Source: Windows Search Service) (EventID: 3028) (User: ) Description: The gatherer object cannot be initialized. Context: Windows Application, SystemIndex Catalog Details: The content index metadata cannot be read. (0xc0041801) Error: (07/28/2015 05:03:31 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: The plug-in in cannot be initialized. Context: Windows Application, SystemIndex Catalog Details: Element not found. (0x80070490) Error: (07/28/2015 05:03:31 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: The plug-in in cannot be initialized. Context: Windows Application, SystemIndex Catalog Details: The content index metadata cannot be read. (0xc0041801) Error: (07/28/2015 05:03:31 PM) (Source: Windows Search Service) (EventID: 9002) (User: ) Description: The Windows Search Service cannot load the property store information. Context: Windows Application, SystemIndex Catalog Details: 0x%08x (0xc0041800 - The content index cannot be read. ) Error: (07/28/2015 05:03:31 PM) (Source: Windows Search Service) (EventID: 7040) (User: ) Description: The search service has detected corrupted data files in the index. The service will attempt to automatically correct this problem by rebuilding the index. Details: The content index metadata cannot be read. (0xc0041801) Error: (07/28/2015 05:03:31 PM) (Source: Windows Search Service) (EventID: 9000) (User: ) Description: The Windows Search Service cannot open the Jet property store. Details: The content index cannot be read. (0xc0041800) Error: (07/28/2015 05:03:31 PM) (Source: ESENT) (EventID: 455) (User: ) Description: Windows (6064) Windows: Error -1811 occurred while opening logfile C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS00BE4.log. Error: (07/28/2015 04:53:40 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005. This is often caused by incorrect security settings in either the writer or requestor process. Operation: Gathering Writer Data Context: Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220} Writer Name: System Writer Writer Instance ID: {d868b205-6023-4940-85ee-39353c5acac2} Error: (07/26/2015 05:57:08 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application NMIndexStoreSvr.exe, version 2.0.16.0, time stamp 0x46825db6, faulting module NMIndexStoreSvr.exe, version 2.0.16.0, time stamp 0x46825db6, exception code 0xc0000005, fault offset 0x0002a17d, process id 0x1d08, application start time 0xNMIndexStoreSvr.exe0. System errors: ============= Error: (07/28/2015 05:06:57 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: lxdxCATSCustConnectService%%1053 Error: (07/28/2015 05:06:57 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: 30000lxdxCATSCustConnectService Error: (07/28/2015 05:05:08 PM) (Source: Microsoft-Windows-TaskScheduler) (EventID: 412) (User: NT AUTHORITY) Description: 2147942402 Error: (07/28/2015 05:05:08 PM) (Source: HTTP) (EventID: 15016) (User: ) Description: \Device\Http\ReqQueueKerberos Error: (07/28/2015 05:03:33 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Windows Presentation Foundation Font Cache 4.0.0.0201Restart the service Error: (07/28/2015 05:03:32 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Windows Search2300001Restart the service Error: (07/28/2015 05:03:32 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Windows Search2147749155 (0x80040D23) Error: (07/28/2015 05:03:31 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Software Licensing11200001Restart the service Error: (07/28/2015 05:03:25 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Windows Presentation Foundation Font Cache 4.0.0.0101Restart the service Error: (07/28/2015 05:03:25 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Volume Shadow Copy1 Microsoft Office: ========================= Error: (08/09/2012 08:24:23 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 997 seconds with 60 seconds of active time. This session ended with a crash. CodeIntegrity Error: =================================== Date: 2015-07-28 17:41:40.422 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2015-07-28 17:41:40.344 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2015-07-28 17:41:40.250 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2015-07-28 17:41:40.168 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2015-07-28 17:41:40.028 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2015-07-28 17:41:39.934 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2015-07-28 17:41:39.856 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2015-07-28 17:41:39.763 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2015-07-28 17:41:32.292 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2015-07-28 17:41:32.210 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM)2 Quad CPU Q8200 @ 2.33GHz Percentage of memory in use: 48% Total physical RAM: 3069.77 MB Available physical RAM: 1579 MB Total Virtual: 6375.77 MB Available Virtual: 4459.71 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:172.69 GB) (Free:25.45 GB) NTFS Drive d: (Zastrzeżone przez system) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[system with boot components (obtained from reading drive)] Drive e: () (Fixed) (Total:195.31 GB) (Free:59.85 GB) NTFS Drive f: () (Fixed) (Total:95.41 GB) (Free:5.49 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 465.8 GB) (Disk ID: A84D06BE) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=195.3 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=172.7 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=95.4 GB) - (Type=07 NTFS) ==================== End of log ============================